{"id":"RHSA-2026:52949","summary":"Red Hat Security Advisory: java-1.8.0-ibm security update","modified":"2026-08-13T10:33:36.349575248Z","published":"2026-08-11T10:12:06Z","upstream":["CVE-2026-8400","CVE-2026-16243","CVE-2026-16439","CVE-2026-16441","CVE-2026-41254","CVE-2026-46968","CVE-2026-47010","CVE-2026-47021","CVE-2026-47027","CVE-2026-47057","CVE-2026-47058","CVE-2026-47059","CVE-2026-47063","CVE-2026-60147"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2026:52949"},{"type":"ARTICLE","url":"https://access.redhat.com/security/updates/classification/#important"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2459420"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2502751"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2502783"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2502784"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2502791"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2502792"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2502793"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2502794"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2502795"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503636"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503798"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503988"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503992"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2512497"},{"type":"ADVISORY","url":"https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_52949.json"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-8400"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-8400"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-8400"},{"type":"ARTICLE","url":"https://www.ibm.com/support/pages/java-sdk-security-vulnerabilities#IBM_Security_Update_July_2026"},{"type":"ARTICLE","url":"https://www.ibm.com/support/pages/node/7282446"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16243"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16243"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16243"},{"type":"ARTICLE","url":"https://github.com/eclipse-omr/omr/pull/8348"},{"type":"ARTICLE","url":"https://github.com/eclipse-omr/omr/pull/8349"},{"type":"ARTICLE","url":"https://gitlab.eclipse.org/security/cve-assignment/-/work_items/195"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16439"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16439"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16439"},{"type":"ARTICLE","url":"https://github.com/eclipse-openj9/openj9/pull/24394"},{"type":"ARTICLE","url":"https://gitlab.eclipse.org/security/cve-assignment/-/work_items/192"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16441"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16441"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16441"},{"type":"ARTICLE","url":"https://github.com/eclipse-openj9/openj9/pull/24396"},{"type":"ARTICLE","url":"https://github.com/eclipse-openj9/openj9/security/advisories/GHSA-hcfc-9hjx-2q7f"},{"type":"ARTICLE","url":"https://gitlab.eclipse.org/security/cve-assignment/-/work_items/194"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-41254"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-41254"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-41254"},{"type":"ARTICLE","url":"https://abhinavagarwal07.github.io/posts/lcms2-cubesize-overflow/"},{"type":"ARTICLE","url":"https://github.com/mm2/Little-CMS/commit/da6110b1d14abc394633a388209abd5ebedd7ab0"},{"type":"ARTICLE","url":"https://github.com/mm2/Little-CMS/commit/e0641b1828d0a1af5ecb1b11fe22f24fceefd4bc"},{"type":"ARTICLE","url":"https://github.com/mm2/Little-CMS/security/advisories/GHSA-4xp6-rcgg-m9qq"},{"type":"ARTICLE","url":"https://www.openwall.com/lists/oss-security/2026/04/17/16"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-46968"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-46968"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-46968"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-47010"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-47010"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-47010"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-47021"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-47021"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-47021"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-47027"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-47027"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-47027"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-47057"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-47057"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-47057"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-47058"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-47058"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-47058"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-47059"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-47059"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-47059"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-47063"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-47063"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-47063"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-60147"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-60147"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-60147"}],"affected":[{"package":{"name":"java-1.8.0-ibm","ecosystem":"Red Hat:enterprise_linux:8::supplementary","purl":"pkg:rpm/redhat/java-1.8.0-ibm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.8.0.8.70-1.el8_10"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:52949.json"}},{"package":{"name":"java-1.8.0-ibm-demo","ecosystem":"Red Hat:enterprise_linux:8::supplementary","purl":"pkg:rpm/redhat/java-1.8.0-ibm-demo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.8.0.8.70-1.el8_10"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:52949.json"}},{"package":{"name":"java-1.8.0-ibm-devel","ecosystem":"Red Hat:enterprise_linux:8::supplementary","purl":"pkg:rpm/redhat/java-1.8.0-ibm-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.8.0.8.70-1.el8_10"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:52949.json"}},{"package":{"name":"java-1.8.0-ibm-headless","ecosystem":"Red Hat:enterprise_linux:8::supplementary","purl":"pkg:rpm/redhat/java-1.8.0-ibm-headless"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.8.0.8.70-1.el8_10"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:52949.json"}},{"package":{"name":"java-1.8.0-ibm-jdbc","ecosystem":"Red Hat:enterprise_linux:8::supplementary","purl":"pkg:rpm/redhat/java-1.8.0-ibm-jdbc"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.8.0.8.70-1.el8_10"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:52949.json"}},{"package":{"name":"java-1.8.0-ibm-plugin","ecosystem":"Red Hat:enterprise_linux:8::supplementary","purl":"pkg:rpm/redhat/java-1.8.0-ibm-plugin"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.8.0.8.70-1.el8_10"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:52949.json"}},{"package":{"name":"java-1.8.0-ibm-src","ecosystem":"Red Hat:enterprise_linux:8::supplementary","purl":"pkg:rpm/redhat/java-1.8.0-ibm-src"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.8.0.8.70-1.el8_10"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:52949.json"}},{"package":{"name":"java-1.8.0-ibm-webstart","ecosystem":"Red Hat:enterprise_linux:8::supplementary","purl":"pkg:rpm/redhat/java-1.8.0-ibm-webstart"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:1.8.0.8.70-1.el8_10"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:52949.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}